Security
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
-
tools-only Bundle 389 Reference Set 01 Cookie Theft Mitigation 017a4462<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 389 Reference Set 01 Cookie Theft Mitigation 6848b8fd<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 439 Reference Set Ext 14 Automotive Security 6b2d4499<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 439 Reference Set Ext 14 Automotive Security D7e44ca1<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 996 Skillset Threat Modeling Tour V5 901086b9<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 209 Control Set Ext 11 Infrastructure 1b42a44d<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 209 Control Set Ext 11 Infrastructure C39fd27c<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 209 Control Set Ext 11 Infrastructure D9fab907<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 2138 Python Flask Web Server Security 91ea3f06Flask (Python) Web Security Spec (Flask 3.1.x, Python 3.x)
7 -
tools-only Bundle 2638 Python Flask Web Server Security 9606d691Flask (Python) Web Security Spec (Flask 3.1.x, Python 3.x)
7 -
tools-only Bundle 891 Reference Set Ext 12 NPM Security 3c3eb33b<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 891 Reference Set Ext 12 NPM Security A9a31878<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 867 Reference Set 06 Certificate Pinning 5702a893<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 895 Reference Set Ext 14 Mobile Security A404bc73<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 1992 Codeguard 0 Supply Chain Security 44125b7erule_id: codeguard-0-supply-chain-security
7 -
tools-only Bundle 491 Iso27001 Audit Methodology 52095d18ISO 27001 ISMS Audit Methodology
7 -
tools-only Bundle 060 Architecture Workflow Guide Cn Aa3de0ab<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 060 Architecture Workflow Guide Cn B6a84e50<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 837 Reference Set 01 Saml Security C85cf750<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 840 Reference Set 02 Authorization Ffce59c1<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 877 Reference Set 09 Ajax Security Db4a8661<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 452 Reference Set 01 Saml Security 5bf46ff0<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 452 Reference Set 01 Saml Security Ead3e514<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 1908 009 Google AI Plugins Audit Report Cc728295Google AI Plugins Audit Report
7 -
tools-only Bundle 2196 Devkitgenerate Security Assessment 9a9a8b1bGenerates comprehensive security assessment document after security audit completion. Use when you need to create a structured security report.
7 -
tools-only Bundle 378 Skillset Threat Modeling Tour Cn V5 7b193854<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 378 Skillset Threat Modeling Tour Cn V5 Cadc4f29<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 395 Reference Set 01 Session Management 3bc5d120<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 395 Reference Set 01 Session Management 7aaafaee<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 415 Reference Set 05 Dom Xss Prevention 0d83c37e<!-- Threat Modeling Skill | Version 3.0.3 (20260209a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 415 Reference Set 05 Dom Xss Prevention E1a779d8<!-- Threat Modeling Skill | Version 3.0.2 (20260204a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 202 Control Set 02 Authorization 91b176eb<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 243 Cryptography Implementation D4d994d2Cryptography Implementation
7 -
tools-only Bundle 832 Reference Set 01 Forgot Password 589d86aa<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 842 Reference Set 03 Bean Validation 0c10cfac<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7 -
tools-only Bundle 843 Reference Set 03 Deserialization 7d97d844<!-- Threat Modeling Skill | Version 3.0.0 (20260201a) | https://github.com/fr33d3m0n/threat-modeling | License: BSD-3-Clause -->
7
Frequently asked questions
What are Security agent skills?
Security agent skills give AI agents disciplined security workflows: code review for vulnerabilities, secret handling, dependency audits, and hardening checklists. Every skill on SkillMD also passes its own safety review before listing, with capability flags shown on each page.
Which Security skills are most installed?
Popular Security skills on SkillMD right now include 389-reference-set-01-cookie-theft-mitigation_017a4462, 389-reference-set-01-cookie-theft-mitigation_6848b8fd, 439-reference-set-ext-14-automotive-security_6b2d4499. Rankings shift as installs change; sort this page by "Most installs" for the live list.
Do Security skills work with Claude Code and Cursor?
Yes. Every skill here ships as a SKILL.md file, an open format that works in Claude Code, Claude.ai, Cursor, Codex, Windsurf, and 60+ other agents. Install one with npx skillmds@latest add <owner>/<name>, or copy the file into your agent's skills directory.